Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: cherry-pick fix from chromium issue 1074317 #24560

Merged
merged 1 commit into from Jul 16, 2020

Conversation

zcbenz
Copy link
Member

@zcbenz zcbenz commented Jul 15, 2020

[1074317] [High] [CVE-2020-6511]: Security: The CSP reports and stacktraces of errors leaks post-redirect URL for <script>
Backport https://chromium.googlesource.com/chromium/src/+/0b707cbaa2cb806162797be55caf9f8074fbdccf

Notes: fix: remove leaks of post-redirect URL for <script> in the CSP reports and stacktraces of errors (Chromium security issue 1074317)

@zcbenz zcbenz added 9-x-y backport-check-skip Skip trop's backport validity checking labels Jul 15, 2020
@zcbenz zcbenz requested a review from a team as a code owner July 15, 2020 11:05
@electron-cation electron-cation bot added the new-pr 🌱 PR opened in the last 24 hours label Jul 15, 2020
@zcbenz zcbenz force-pushed the cherry-pick/1074317/9-x-y branch from 07ff43d to 439630b Compare July 16, 2020 00:57
@zcbenz zcbenz merged commit a9c419a into 9-x-y Jul 16, 2020
@release-clerk
Copy link

release-clerk bot commented Jul 16, 2020

Release Notes Persisted

fix: remove leaks of post-redirect URL for <script> in the CSP reports and stacktraces of errors (Chromium security issue 1074317)

@zcbenz zcbenz deleted the cherry-pick/1074317/9-x-y branch July 16, 2020 03:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
9-x-y backport-check-skip Skip trop's backport validity checking new-pr 🌱 PR opened in the last 24 hours
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants